Regenerate SSH keys and configure other SSH connection
parameters with a management SSH service profile.
| Where Can I Use This? | What Do I Need? |
| NGFW (Managed by PAN-OS or Panorama) |
|
If you are using SSH to access the CLI of
the firewall in FIPS-CC mode, you must set automatic rekeying parameters
for session keys.
Also note that, to use the same
SSH connection settings for each Dedicated Log Collector (M-Series
or Panorama™ virtual appliances in Log Collector mode) in a
Collector Group, you must
configure an SSH service profile from the Panorama management server,
Commit the
changes to Panorama, and then
Push the configuration
to the Log Collectors. You can use the
set log-collector-group <name> general-setting management ssh commands.
Each of the following configuration steps includes
a commit and an SSH service restart if you perform only one step
(except when you create a profile without configuring any settings).
Otherwise, you can set multiple SSH options and then commit your
changes and restart SSH when you’re done.